Apple engineer says he was fired after refusing to send cust. device IDs to AT&T
31–40 of 43 posts
Re: Apple engineer says he was fired after refusing to send cust. device IDs to AT&T
#32Re: Apple engineer says he was fired after refusing to send cust. device IDs to AT&T
#33This is why you should use open-source firmware where there is no registration and customer IDs. Also, the software should allow overwrite IMEI to a random value daily. > Boardman believed the meeting would finally address both issues. > Apple fired him the next day. This is a reminder that being honest with a company doesn't benefit you.
IMEI is not GAID (Google Ad ID) or IDFA (Identifier for Advertisers, for iOS devices), which can be changed. Google Android allows users to change GAID (in a rather cumbersome process), some privacy-conscious Android alternatives automate this on a regular basis AFAIU.
IMEI doesn't function like a MAC address, which can also be changed with relatively little concern (though it's helpful to present the same MAC to the same network on repeated connects, particularly if that network limits access to known MAC addresses, a ... rather weak form of security).
Moreover, IMEIs are useful in limiting the usefulness of stolen devices, as the IMEI can be added to a blocklist by carriers to prevent their use on networks. There's been (unsuccessful to date) legislation proposed in the US to ban IMEI modification entirely. In practice it is possible to change IMEIs, but that would effectively result in the device being unrecognised by the carrier, and new service under the new IMEI would have to be established. This isn't something you could do easily while continuing to use the same number (absent, say, number portability ... which would defeat much of the identity skirting), though it might fit some use cases.
IMEI is largely present only on phones with SIM or eSIM capabilities, but is independent of the SIM itself. Changing the SIM/eSIM will NOT change the IMEI.
https://en.wikipedia.org/wiki/International_Mobile_Equipment...>
More generally: it is hard to make cellular device use private, given that effective identity leaks occur through so many channels. Location, proximity to other devices, patterns of use, patterns of contacts, billing information, associated phone numbers, other account contacts, and the like. Much as I'd prefer otherwise, a given phone probably maps pretty closely with an individual or small group (family, household, business location / work crew, etc.). That's pretty intrinsic to how the system functions.
Securing data on the device may be more tractable, but limits exist there too.
Re: Apple engineer says he was fired after refusing to send cust. device IDs to AT&T
#34This is why you should use open-source firmware where there is no registration and customer IDs. Also, the software should allow overwrite IMEI to a random value daily. > Boardman believed the meeting would finally address both issues. > Apple fired him the next day. This is a reminder that being honest with a company doesn't benefit you.
Any recs for such firmware (that randomizes IMEI)?
https://www.imeichanger.net/>
Re: Apple engineer says he was fired after refusing to send cust. device IDs to AT&T
#35This guy is going to lose. If a company is violating no laws and your manager tells you to drop it, you can either drop it or quit. You don't get to choose how to interpret company policy.
I agree this engineer will probably lose the case because Apple has better lawyers, but I believe your underlying argument to be incorrect. If your manager asks you to violate company policy, then the correct response is to not violate company policy and instead contact HR/legal. Otherwise, saying “my manager made me do it” will not save you if heads start to roll. This applies to both policies that are strictly inte…
Re: Apple engineer says he was fired after refusing to send cust. device IDs to AT&T
#36This guy is going to lose. If a company is violating no laws and your manager tells you to drop it, you can either drop it or quit. You don't get to choose how to interpret company policy.
according to the article, he alleges Apple was doing something "without required customer releases"; there's at least the implication that a regulation is being broken, do you know something extra about this?
Re: Apple engineer says he was fired after refusing to send cust. device IDs to AT&T
#37This guy is going to lose. If a company is violating no laws and your manager tells you to drop it, you can either drop it or quit. You don't get to choose how to interpret company policy.
At any large employer you sign an agreement to follow the employee handbook and internal policies. They all say the same thing: don't violate the policies even if directed to by your manager. In this case Apple's legal department had identified the serials and IMEIs as PII. This is why the case is in civil court and not criminal (because Apple didn't violate any "laws" as you claim). It is a contract dispute.
Re: Apple engineer says he was fired after refusing to send cust. device IDs to AT&T
#38This is why you should use open-source firmware where there is no registration and customer IDs. Also, the software should allow overwrite IMEI to a random value daily. > Boardman believed the meeting would finally address both issues. > Apple fired him the next day. This is a reminder that being honest with a company doesn't benefit you.
How would that work? Wouldn't changing the IMEI regularly either get your phone blacklisted or it may not even get service due to the IMEI not being in your cell provider's system?
I'm not sure how changing your IMEI would get you blacklisted any more then if you switched your SIM between phones.
Re: Apple engineer says he was fired after refusing to send cust. device IDs to AT&T
#39Shame on you, Apple. If you want to keep your reputation, be better.
Re: Apple engineer says he was fired after refusing to send cust. device IDs to AT&T
#40This guy is going to lose. If a company is violating no laws and your manager tells you to drop it, you can either drop it or quit. You don't get to choose how to interpret company policy.
I agree this engineer will probably lose the case because Apple has better lawyers, but I believe your underlying argument to be incorrect. If your manager asks you to violate company policy, then the correct response is to not violate company policy and instead contact HR/legal. Otherwise, saying “my manager made me do it” will not save you if heads start to roll. This applies to both policies that are strictly inte…
If you want to take a moral stance to not do your job, you quit. You can give a long, eloquent speech if you want. You can write an essay about why you quit. You can start a gofundme. But you do not get to refuse to do your job and keep drawing a salary. That is trying to make a moral stance without a cost. It has nothing to do with Apple having better lawyers, and everything to do with the engineer not understanding what a job is, or what a moral stance is. The moral stance part is where you forego the income from doing something you disagree with, not refusing to do it and getting to keep the income.